Previous Topic: CA Identity Manager Model FixNext Topic: Change the CA Identity Governance Export Administrator


Model Compatibility

When you integrate CA Identity Governance and CA Identity Manager, the following incompatibility can occur.

CA Identity Governance privileges are additive, meaning that a user is given every privilege dictated by the roles that they belong to. However, in CA Identity Manager, an account can be subtractive, meaning that a user can have fewer privileges than its account template dictates.

The normal import and export process between CA Identity Governance and CA Identity Manager does not detect the difference between assigned privileges due to the previous issue, so there is a discrepancy between CA Identity Manager data and CA Identity Governance data.

CA Identity Governance detects missing privileges during an import process, and then adds the missing privileges during export. To enable this solution, select the Model Compatibility check box under the Connectors (Export) screen.

Note: Model compatibility is not run during continuous export. To retain this functionality, schedule a full export to run at regular intervals.